CVE-2020-9543

OpenStack Manila =8.0.0 =9.0.0 <9.1.1 allows attackers to view, update, delete, or share resources that do not belong to them, because of a context-free lookup of a UUID. Attackers may also create resources, such as shared file systems and groups of shares on such share networks.
Configurations

Configuration 1

cpe:2.3:a:openstack:manila:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:manila:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:manila:*:*:*:*:*:*:*:*

Information

Published : 2020-03-12 05:15

Updated : 2020-07-14 05:27


NVD link : CVE-2020-9543

Mitre link : CVE-2020-9543

Products Affected
No products.
CWE
CWE-276

Incorrect Default Permissions